<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>SysAdmin Adventures &#187; whitepaper</title>
	<atom:link href="http://blog.tpa.me.uk/tag/whitepaper/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.tpa.me.uk</link>
	<description>Tech notes from a Systems Administrator</description>
	<lastBuildDate>Mon, 31 Oct 2011 11:09:09 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3</generator>
		<item>
		<title>OpenVPN :: The ONLY VPN</title>
		<link>http://blog.tpa.me.uk/2009/09/01/openvpn-the-only-vpn/</link>
		<comments>http://blog.tpa.me.uk/2009/09/01/openvpn-the-only-vpn/#comments</comments>
		<pubDate>Tue, 01 Sep 2009 15:19:47 +0000</pubDate>
		<dc:creator>Zordrak</dc:creator>
				<category><![CDATA[Linux]]></category>
		<category><![CDATA[Slackware]]></category>
		<category><![CDATA[VPN]]></category>
		<category><![CDATA[ipsec]]></category>
		<category><![CDATA[openvpn]]></category>
		<category><![CDATA[sonicwall]]></category>
		<category><![CDATA[ssl]]></category>
		<category><![CDATA[whitepaper]]></category>

		<guid isPermaLink="false">http://blog.tpa.me.uk/?p=93</guid>
		<description><![CDATA[There is a huge amount I would like to say about OpenVPN and the idea of true SSL VPNs as a replacement for the insanity of IPSec VPNs, but it would only be garbled and incomplete. That being the case, no-one may discuss VPN until they have at least skimmed through this whitepaper: http://www.sans.org/rr/whitepapers/vpns/1459.php At [...]]]></description>
			<content:encoded><![CDATA[<p>There is a huge amount I would like to say about OpenVPN and the idea of true SSL VPNs as a replacement for the insanity of IPSec VPNs, but it would only be garbled and incomplete. That being the case, no-one may discuss VPN until they have at least skimmed through this whitepaper:</p>
<p><a href="http://www.sans.org/rr/whitepapers/vpns/1459.php" onclick="pageTracker._trackPageview('/outgoing/www.sans.org/rr/whitepapers/vpns/1459.php?referer=');">http://www.sans.org/rr/whitepapers/vpns/1459.php</a></p>
<p>At work, I have replaced the VPN solution that used to be provided by a SonicWALL hardware firewall with OpenVPN running on a Slackware64 server.</p>
<ul>
<li>The performance is so many orders of magnitude higher it&#8217;s not worth calculating.</li>
<li>No-one&#8217;s ISP ever gets in the way any more with undiagnosable failure, because communication now depends solely on UDP/1194.</li>
<li>The simplicity and interoperability has allowed us to do things we never could have done before.</li>
<li>We no longer depend on proprietary software from SonicWALL which, to be honest, I wouldn&#8217;t use to wipe my own arse with.</li>
<li>OpenVPN is happily chugging away tunnelling Layer 2 so I don&#8217;t have to worry about protocols.</li>
<li>I can now tunnel from pretty much any operating system instead of only the Windows boxes that fall over and die at the thought of the proprietary IPSec driver.</li>
</ul>
<p>It&#8217;s beautiful, it has reduced my workload and I love it. You will too.</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.tpa.me.uk/2009/09/01/openvpn-the-only-vpn/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

